57.411 CVE seguite
782 Sfruttate ora
186 Usate dai ransomware
Ultima sincronia
CVE Tracker
57.411 CVE
Dieci fornitori seguiti per identificativo CPE, non per parola chiave: una CVE compare qui quando NVD dichiara quali prodotti tocca, di solito qualche giorno dopo la pubblicazione.
| Identificativo | Gravità, ordina dal più alto | Prodotto e difetto | EPSS, ordina dal più alto | In KEV dal, ordinato dal più basso |
|---|---|---|---|---|
| CVE-2023-21693 | MED 5.7 | microsoft windows_10 Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability | 1,4% | — |
| CVE-2023-21692 | CRIT 9.8 | microsoft windows_10_1507 Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability | 21,2% | — |
| CVE-2023-21691 | HIGH 7.5 | microsoft windows_10_1507 Microsoft Protected Extensible Authentication Protocol (PEAP) Information Disclosure Vulnerability | 1,4% | — |
| CVE-2023-21690 | CRIT 9.8 | microsoft windows_10_1507 Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability | 27,5% | — |
| CVE-2023-21689 | CRIT 9.8 | microsoft windows_10_1507 Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability | 26,5% | — |
| CVE-2023-21688 | HIGH 7.8 | microsoft windows_10_1507 NT OS Kernel Elevation of Privilege Vulnerability | 3,6% | — |
| CVE-2023-21687 | MED 5.5 | microsoft windows_11_21h2 HTTP.sys Information Disclosure Vulnerability | 0,5% | — |
| CVE-2023-21686 | HIGH 8.8 | microsoft windows_10_1507 Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability | 1,1% | — |
| CVE-2023-21685 | HIGH 8.8 | microsoft windows_10_1507 Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability | 1,2% | — |
| CVE-2023-21684 | HIGH 8.8 | microsoft windows_10_1507 Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability | 1,3% | — |
| CVE-2023-21683 | HIGH 7.5 | microsoft windows_10_1607 Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability | 2,0% | — |
| CVE-2023-21682 | MED 5.3 | microsoft windows_10_1607 Windows Point-to-Point Protocol (PPP) Information Disclosure Vulnerability | 1,4% | — |
| CVE-2023-21681 | HIGH 8.8 | microsoft windows_10_1607 Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability | 1,4% | — |
| CVE-2023-21680 | HIGH 7.8 | microsoft windows_10_1607 Windows Win32k Elevation of Privilege Vulnerability | 0,5% | — |
| CVE-2023-21679 | HIGH 8.1 | microsoft windows_10_1607 Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability | 1,1% | — |
| CVE-2023-21678 | HIGH 7.8 | microsoft windows_10_1607 Windows Print Spooler Elevation of Privilege Vulnerability | 0,6% | — |
| CVE-2023-21677 | HIGH 7.5 | microsoft windows_10_1607 Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability | 2,0% | — |
| CVE-2023-21676 | HIGH 8.8 | microsoft windows_10_1809 Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability | 1,5% | — |
| CVE-2023-21675 | HIGH 7.8 | microsoft windows_10_1607 Windows Kernel Elevation of Privilege Vulnerability | 0,8% | — |
| CVE-2023-2166 | MED 5.5 | linux linux_kernel A null pointer dereference issue was found in can protocol in net/can/af_can.c in the Linux before Linux. ml_priv may not be initialized in the receive path of CAN frames. A local user could use this flaw to crash the system or potentially cause a denial of se | 0,2% | — |
| CVE-2023-2163 | CRIT 10.0 | linux linux_kernel Incorrect verifier pruning in BPF in Linux Kernel >=5.4 leads to unsafe code paths being incorrectly marked as safe, resulting in arbitrary read/write in kernel memory, lateral privilege escalation, and container escape. | 3,5% | — |
| CVE-2023-21622 | HIGH 7.8 | adobe framemaker FrameMaker 2020 Update 4 (and earlier), 2022 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a vic | 0,3% | — |
| CVE-2023-21621 | HIGH 7.8 | adobe framemaker FrameMaker 2020 Update 4 (and earlier), 2022 (and earlier) are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that | 0,3% | — |
| CVE-2023-21620 | MED 5.5 | adobe framemaker FrameMaker 2020 Update 4 (and earlier), 2022 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of | 0,3% | — |
| CVE-2023-2162 | MED 5.5 | linux linux_kernel A use-after-free vulnerability was found in iscsi_sw_tcp_session_create in drivers/scsi/iscsi_tcp.c in SCSI sub-component in the Linux Kernel. In this flaw an attacker could leak kernel internal information. | 0,2% | — |